| 53693 |
CVE-2007-1509 |
Directory traversal vulnerability in enkrypt.php in Sascha Schroeder krypt (aka Holtstraeter Rot 13) allows remote attackers to read arbitrary files via a .. (dot dot) in the datei parameter. |
|
2 |
4.3 |
Medium |
2017-01-07 |
2008-11-13 |
View
|
| 55487 |
CVE-2007-3335 |
Multiple SQL injection vulnerabilities in the admin panel in PHPEcho CMS before 1.6 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. |
|
2 |
7.5 |
High |
2017-01-07 |
2008-11-13 |
View
|
| 53698 |
CVE-2007-1514 |
PHP remote file inclusion vulnerability in index.php in ViperWeb Portal alpha 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the modpath parameter. |
|
2 |
6.8 |
Medium |
2017-01-07 |
2008-11-13 |
View
|
| 54469 |
CVE-2007-2302 |
PHP remote file inclusion vulnerability in autoindex.php in Expow 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_file parameter. |
|
2 |
7.5 |
High |
2017-01-07 |
2008-11-13 |
View
|
| 55494 |
CVE-2007-3342 |
Multiple cross-site scripting (XSS) vulnerabilities in Movable Type (MT) before 3.34 allow remote attackers to inject arbitrary web script or HTML via comments that have (1) a malformed SGML numeric character reference with a " |